<html><body><div style="color:#000; background-color:#fff; font-family:times new roman, new york, times, serif;font-size:13px"><div><span></span></div><div id="yui_3_16_0_1_1429869173689_3283">Thanks Stian. Can that work be prioritized over the other auth mechanisms you mentioned and if not, can you provide me a few pointers on how I can extend KC to implement that use case ? I need to have something done quickly to present KC as a viable solution or risk losing out.</div><div id="yui_3_16_0_1_1429869173689_3284"><br></div><div id="yui_3_16_0_1_1429869173689_3285" dir="ltr">BTW is there any documentation that would help me use Eclipse or any other IDE to develop/build and test any extensions?<br> </div><div id="yui_3_16_0_1_1429869173689_3256" style="font-family: times new roman, new york, times, serif; font-size: 13px;"> <div id="yui_3_16_0_1_1429869173689_3255" style="font-family: HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, sans-serif; font-size: 16px;"> <div id="yui_3_16_0_1_1429869173689_3254" dir="ltr"> <hr size="1" id="yui_3_16_0_1_1429869173689_3257"> <font id="yui_3_16_0_1_1429869173689_3293" face="Arial" size="2"> <b><span style="font-weight: bold;">From:</span></b> Stian Thorgersen <stian@redhat.com><br> <b><span style="font-weight: bold;">To:</span></b> Raghu Prabhala <prabhalar@yahoo.com> <br><b><span style="font-weight: bold;">Cc:</span></b> Bill Burke <bburke@redhat.com>; keycloak-user@lists.jboss.org <br> <b><span style="font-weight: bold;">Sent:</span></b> Friday, April 24, 2015 12:44 AM<br> <b><span style="font-weight: bold;">Subject:</span></b> Re: [keycloak-user] Client credentials grant<br> </font> </div> <div class="y_msg_container" id="yui_3_16_0_1_1429869173689_3294"><br>It's on our roadmap, but not short term. So my guess would be in a few months and would be done together with client accounts and more auth mechanisms for clients (jwt/jws and cert)<br clear="none"><br clear="none">----- Original Message -----<br clear="none">> From: "Raghu Prabhala" <<a href="mailto:prabhalar@yahoo.com" shape="rect" ymailto="mailto:prabhalar@yahoo.com">prabhalar@yahoo.com</a>><br clear="none">> To: "Bill Burke" <<a href="mailto:bburke@redhat.com" shape="rect" ymailto="mailto:bburke@redhat.com">bburke@redhat.com</a>><br clear="none">> Cc: <a id="yui_3_16_0_1_1429869173689_3295" href="mailto:keycloak-user@lists.jboss.org" shape="rect" ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br clear="none">> Sent: Thursday, 23 April, 2015 11:22:15 PM<br clear="none">> Subject: Re: [keycloak-user] Client credentials grant<br clear="none">> <br clear="none">> Thanks. Noticed that there is already a jira 941 for that requirement. Any<br clear="none">> idea when that would be implemented?<br clear="none">> <br clear="none">> Sent from my iPhone<br clear="none">> <br clear="none">> > On Apr 23, 2015, at 4:49 PM, Bill Burke <<a href="mailto:bburke@redhat.com" shape="rect" ymailto="mailto:bburke@redhat.com">bburke@redhat.com</a>> wrote:<br clear="none">> > <br clear="none">> > No, we don't support this.<br clear="none">> > <br clear="none">> >> On 4/23/2015 4:45 PM, Raghu Prabhala wrote:<br clear="none">> >> Bill/Dev team<br clear="none">> >> <br clear="none">> >> Is "client credentials grant" supported in KC? Getting an "invalid<br clear="none">> >> grant" error when using a client code that was tested against other oidc<br clear="none">> >> implementation. Tried the bearer-only setting in KC but that did not<br clear="none">> >> help. If not supported, can I put in an enhancement request?<br clear="none">> >> <br clear="none">> >> This is an important use case for us where one client application<br clear="none">> >> interacts with other by passing an access token and scope.<br clear="none">> >> <br clear="none">> >> Thanks,<br clear="none">> >> Raghu<br clear="none">> >> <br clear="none">> >> Sent from my iPhone<br clear="none">> >> _______________________________________________<br clear="none">> >> keycloak-user mailing list<br clear="none">> >> <a href="mailto:keycloak-user@lists.jboss.org" shape="rect" ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br clear="none">> >> <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br clear="none">> >> <br clear="none">> > <br clear="none">> > --<br clear="none">> > Bill Burke<br clear="none">> > JBoss, a division of Red Hat<br clear="none">> > <a href="http://bill.burkecentral.com/" target="_blank" shape="rect">http://bill.burkecentral.com</a><div class="qtdSeparateBR"><br><br></div><div class="yqt6121015380" id="yqtfd50061"><br clear="none">> > _______________________________________________<br clear="none">> > keycloak-user mailing list<br clear="none">> > <a href="mailto:keycloak-user@lists.jboss.org" shape="rect" ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br clear="none">> > <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br clear="none">> <br clear="none">> _______________________________________________<br clear="none">> keycloak-user mailing list<br clear="none">> <a href="mailto:keycloak-user@lists.jboss.org" shape="rect" ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br clear="none">> <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br clear="none">> <br clear="none"></div><br><br></div> </div> </div> </div></body></html>